CVE-2008-4589

Severity CVSS v4.0:
Pending analysis
Type:
CWE-119 Buffer Errors
Publication date:
15/10/2008
Last modified:
09/04/2025

Description

Heap-based buffer overflow in the tvtumin.sys kernel driver in Lenovo Rescue and Recovery 4.20, including 4.20.0511 and 4.20.0512, allows local users to execute arbitrary code via a long file name.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:lenovo:resuce_and_recovery:4.20:*:*:*:*:*:*:*
cpe:2.3:a:lenovo:resuce_and_recovery:4.20.0511:*:*:*:*:*:*:*
cpe:2.3:a:lenovo:resuce_and_recovery:4.20.0512:*:*:*:*:*:*:*